Item Search

NameAudit NamePluginCategory
1.1.13 Ensure separate partition exists for /homeCIS Amazon Linux v2.1.0 L2Unix

CONFIGURATION MANAGEMENT

1.5 Configure DB2 to use non-standard ports - Port 523CIS IBM DB2 v10 v1.1.0 Linux OS Level 1Unix

CONFIGURATION MANAGEMENT

1.73 Ensure 'Disable saving browser history' is set to 'Disabled'CIS Microsoft Edge L1 v2.0.0Windows

CONFIGURATION MANAGEMENT

1.96 Ensure 'Enable warnings for insecure forms' is set to 'Enabled'CIS Microsoft Edge L1 v2.0.0Windows

CONFIGURATION MANAGEMENT

1.97 Ensure 'Enforce Bing SafeSearch' is set to 'Enabled: Configure moderate search restrictions in Bing'CIS Microsoft Edge L2 v2.0.0Windows

CONFIGURATION MANAGEMENT

1.98 Ensure 'Enforce Google SafeSearch' is set to 'Enabled'CIS Microsoft Edge L2 v2.0.0Windows

CONFIGURATION MANAGEMENT

1.115 Ensure 'Specify if online OCSP/CRL checks are required for local trust anchors' is set to 'Enabled'CIS Microsoft Edge L2 v2.0.0Windows

CONFIGURATION MANAGEMENT

2.3.5.2 (L1) Ensure 'Domain controller: Allow vulnerable Netlogon secure channel connections' is set to 'Not Configured' (DC Only)CIS Windows Server 2012 DC L1 v3.0.0Windows

CONFIGURATION MANAGEMENT

2.3.7.1 (L1) Ensure 'Interactive logon: Do not display last user name' is set to 'Enabled'CIS Microsoft Windows Server 2008 R2 Domain Controller Level 1 v3.3.1Windows

CONFIGURATION MANAGEMENT

2.3.7.2 (L1) Ensure 'Interactive logon: Do not require CTRL+ALT+DEL' is set to 'Disabled'CIS Microsoft Windows Server 2008 Domain Controller Level 1 v3.3.1Windows

CONFIGURATION MANAGEMENT

2.3.9.5 (L1) Ensure 'Microsoft network server: Server SPN target name validation level' is set to 'Accept if provided by client' or higher (MS only)CIS Microsoft Windows Server 2008 R2 Member Server Level 1 v3.3.1Windows

CONFIGURATION MANAGEMENT

2.3.10.12 (L1) Ensure 'Network access: Sharing and security model for local accounts' is set to 'Classic - local users authenticate as themselves'CIS Azure Compute Microsoft Windows Server 2019 v1.0.0 L1 DCWindows

CONFIGURATION MANAGEMENT

2.3.15.1 (L1) Ensure 'System objects: Require case insensitivity for non-Windows subsystems' is set to 'Enabled'CIS Microsoft Windows Server 2008 R2 Member Server Level 1 v3.3.1Windows

CONFIGURATION MANAGEMENT

2.4.1.1 Ensure cron daemon is enabled and activeCIS Debian Linux 12 v1.0.1 L1 ServerUnix

CONFIGURATION MANAGEMENT

2.16.1 Audit Wallet & Apple Pay SettingsCIS Apple macOS 13.0 Ventura v2.1.0 L2Unix

CONFIGURATION MANAGEMENT

2.24 Ensure 'Keep browsing data when creating enterprise profile by default' Is EnabledCIS Google Chrome L1 v3.0.0Windows

CONFIGURATION MANAGEMENT

3.2 Verify that docker.service file permissions are set to 644 or more restrictiveCIS Docker 1.13.0 v1.0.0 L1 DockerUnix

CONFIGURATION MANAGEMENT

3.4 Verify that docker.socket file permissions are set to 644 or more restrictiveCIS Docker 1.13.0 v1.0.0 L1 DockerUnix

CONFIGURATION MANAGEMENT

3.7.3 (L1) Ensure 'Point and Print Restrictions: When updating drivers for an existing connection' is set to 'Enabled: Show warning and elevation prompt'CIS Microsoft Intune for Windows 10 v3.0.1 L1Windows

CONFIGURATION MANAGEMENT

3.10 Verify that TLS CA certificate file permissions are set to 444 or more restrictiveCIS Docker 1.13.0 v1.0.0 L1 DockerUnix

CONFIGURATION MANAGEMENT

3.16 Verify that Docker socket file permissions are set to 660 or more restrictiveCIS Docker 1.13.0 v1.0.0 L1 DockerUnix

CONFIGURATION MANAGEMENT

3.18 Verify that daemon.json file permissions are set to 644 or more restrictiveCIS Docker 1.12.0 v1.0.0 L1 DockerUnix

CONFIGURATION MANAGEMENT

3.19 Verify that /etc/default/docker file ownership is set to root:rootCIS Docker 1.12.0 v1.0.0 L1 DockerUnix

CONFIGURATION MANAGEMENT

3.20 Verify that /etc/default/docker file permissions are set to 644 or more restrictiveCIS Docker 1.11.0 v1.0.0 L1 DockerUnix

CONFIGURATION MANAGEMENT

4.1.3 Auto-restart After Abnormal Termination (AUTORESTART)CIS IBM DB2 11 v1.1.0 Windows OS Level 1Windows

CONFIGURATION MANAGEMENT

4.2.3 Ensure 'Allow clipboard for these sites' Is ConfiguredCIS Google Chrome L1 v3.0.0Windows

CONFIGURATION MANAGEMENT

4.11 Ensure 'List of types that should be excluded from synchronization' is set to 'Enabled: passwords'CIS Google Chrome L1 v3.0.0Windows

CONFIGURATION MANAGEMENT

5.2.1.1 Ensure Security Fabric is ConfiguredCIS Fortigate 7.0.x v1.3.0 L2FortiGate

CONFIGURATION MANAGEMENT

6.2.3 Ensure email from external senders is identifiedCIS Microsoft 365 Foundations E3 L1 v3.1.0microsoft_azure

CONFIGURATION MANAGEMENT

8.1.2 Ensure users can't send emails to a channel email addressCIS Microsoft 365 Foundations E3 L1 v3.0.0microsoft_azure

CONFIGURATION MANAGEMENT

8.2.14 Key Rotation in HADR EnvironmentCIS IBM DB2 11 v1.1.0 Database Level 2IBM_DB2DB

CONFIGURATION MANAGEMENT

8.3.30 Set 'Allow META REFRESH' to 'Enabled:Disable'CIS IE 11 v1.0.0Windows

CONFIGURATION MANAGEMENT

8.4 Review system tablespaces for user dataCIS IBM DB2 9 Benchmark v3.0.1 Level 1 DBIBM_DB2DB

CONFIGURATION MANAGEMENT

8.5.4 Ensure users dialing in can't bypass the lobbyCIS Microsoft 365 Foundations E3 L1 v3.0.0microsoft_azure

CONFIGURATION MANAGEMENT

8.5.4 Ensure users dialing in can't bypass the lobbyCIS Microsoft 365 Foundations E3 L1 v3.1.0microsoft_azure

CONFIGURATION MANAGEMENT

9.1.1 Enable cron Daemon - anacron run level 4CIS Debian Linux 7 L1 v1.0.0Unix

CONFIGURATION MANAGEMENT

9.1.1 Enable cron Daemon - anacron run level 5CIS Debian Linux 7 L1 v1.0.0Unix

CONFIGURATION MANAGEMENT

9.3 Review System TablespacesCIS IBM DB2 v10 v1.1.0 Database Level 1IBM_DB2DB

CONFIGURATION MANAGEMENT

9.3 Review System TablespacesCIS IBM DB2 v10 v1.1.0 Database Level 2IBM_DB2DB

CONFIGURATION MANAGEMENT

18.3.6 Ensure 'NetBT NodeType configuration' is set to 'Enabled: P-node (recommended)'CIS Windows 7 Workstation Level 1 + Bitlocker v3.2.0Windows

CONFIGURATION MANAGEMENT

18.6.3 (L1) Ensure 'Point and Print Restrictions: When updating drivers for an existing connection' is set to 'Enabled: Show warning and elevation prompt'CIS Microsoft Windows Server 2008 Domain Controller Level 1 v3.3.1Windows

CONFIGURATION MANAGEMENT

18.7.4 (L1) Ensure 'Manage processing of Queue-specific files' is set to 'Enabled: Limit Queue-specific files to Color profiles'CIS Windows Server 2012 DC L1 v3.0.0Windows

CONFIGURATION MANAGEMENT

18.7.6 (L1) Ensure 'Point and Print Restrictions: When updating drivers for an existing connection' is set to 'Enabled: Show warning and elevation prompt'CIS Windows Server 2012 R2 DC L1 v3.0.0Windows

CONFIGURATION MANAGEMENT

18.8.22.1.5 Ensure 'Turn off Internet download for Web publishing and online ordering wizards' is set to 'Enabled'CIS Windows 7 Workstation Level 1 + Bitlocker v3.2.0Windows

CONFIGURATION MANAGEMENT

18.9.65.3.11.1 (L1) Ensure 'Do not delete temp folders upon exit' is set to 'Disabled'CIS Microsoft Windows Server 2008 R2 Member Server Level 1 v3.3.1Windows

CONFIGURATION MANAGEMENT

18.9.65.3.11.1 (L1) Ensure 'Do not delete temp folders upon exit' is set to 'Disabled'CIS Microsoft Windows Server 2008 Member Server Level 1 v3.3.1Windows

CONFIGURATION MANAGEMENT

18.9.65.3.11.1 (L1) Ensure 'Do not delete temp folders upon exit' is set to 'Disabled'CIS Azure Compute Microsoft Windows Server 2019 v1.0.0 L1 MSWindows

CONFIGURATION MANAGEMENT

18.9.65.3.11.2 (L1) Ensure 'Do not use temporary folders per session' is set to 'Disabled'CIS Microsoft Windows Server 2008 Domain Controller Level 1 v3.3.1Windows

CONFIGURATION MANAGEMENT

18.9.65.3.11.2 (L1) Ensure 'Do not use temporary folders per session' is set to 'Disabled'CIS Azure Compute Microsoft Windows Server 2019 v1.0.0 L1 MSWindows

CONFIGURATION MANAGEMENT

18.10.57.3.11.1 (L1) Ensure 'Do not delete temp folders upon exit' is set to 'Disabled'CIS Windows Server 2012 DC L1 v3.0.0Windows

CONFIGURATION MANAGEMENT